lodash-es 3.10.1VulnerableOutdated
Lodash exported as ES modules.
13 KB
Prototype Pollution in lodash
Affected versions >=0 <4.17.14
Regular Expression Denial of Service (ReDoS) in lodash
Affected versions >=0 <4.17.11
Command Injection in lodash
Affected versions >=0 <4.17.21
Regular Expression Denial of Service (ReDoS) in lodash
Affected versions >=0 <4.17.21
Prototype Pollution in lodash
Affected versions >=3.7.0 <4.17.20
Matched Modules
Version distribution in production
3 519
1 221
axios 0.17.1 - 0.18.0VulnerableOutdated
Promise based HTTP client for the browser and node.js
object-path 0.6.0VulnerableOutdated
Access deep object properties using a path
es5-ext 0.10.24 - 0.10.49VulnerableOutdated
ECMAScript extensions and shims
readable-stream 2.3.4 - 2.3.7Outdated
Node.js Streams, a user-land copy of the stream library from Node.js
string_decoder 1.1.0 - 1.3.0
The string_decoder module from Node core
uuid 7.0.0 - 8.0.0Outdated
RFC4122 (v1, v4, and v5) UUIDs
isarray 1.0.0 - 2.0.5
Array#isArray for older browsers
inherits 2.0.3Outdated
Browser-friendly inheritance fully compatible with standard node.js inherits()
buffer 4.6.0 - 4.9.2Outdated
Node.js Buffer API, for the browser
sprintf-js 1.1.1Outdated
JavaScript sprintf implementation
path-to-regexp 2.0.0 - 2.3.0Outdated
Express style path to RegExp utility
cookie 0.1.5Outdated
HTTP server cookie parsing and serialization
core-util-is 1.0.2 - 1.0.3
The `*` functions introduced in Node v0.12.
rxjs 5.4.2 - 5.4.3Outdated
Reactive Extensions for modern JavaScript
base64-js 1.3.0 - 1.5.1
Base64 encoding/decoding in pure JS
is-buffer 1.1.4 - 1.1.6Outdated
Determine if an object is a Buffer
core-js 2.5.6Outdated
Standard library
scheduler 0.9.0 - 0.14.0Outdated
Cooperative scheduler for the browser environment.
prop-types 15.6.0 - 15.6.2Outdated
Runtime type checking for React props and similar objects.
react 16.8.6Outdated
React is a JavaScript library for building user interfaces.
url 0.11.0Outdated
The core `url` packaged standalone for use with Browserify.
immutable 3.8.1 - 3.8.2Outdated
Immutable Data Collections
hoist-non-react-statics 2.5.0Outdated
Copies non-react specific statics from a child component to a parent component
classnames 2.2.2 - 2.2.6Outdated
A simple utility for conditionally joining classNames together
query-string 5.0.1 - 5.1.1Outdated
Parse and stringify URL query strings
react-transition-group 2.4.0 - 2.5.2Outdated
A react component toolset for managing animations
dom-helpers 5.0.1 - 5.2.1
tiny modular DOM lib for ie9+
underscore 1.11.0 - 1.13.6
JavaScript's functional programming helper library.
redux 4.0.1Outdated
Predictable state container for JavaScript apps
stream-http 2.8.2 - 2.8.3Outdated
Streaming http in the browser
timers-browserify 2.0.9Outdated
timers module for browserify
crypto-browserify 1.0.9 - 2.0.0Outdated
implementation of crypto for the browser
querystring-es3 0.2.1
Node's querystring module for all engines. (ES3 compat fork)
babel-runtime 6.18.0 - 6.26.0
babel selfContained runtime
shallowequal 1.0.1 - 1.1.0
Like lodash isEqualWith but for shallow equal.
history 4.6.2Outdated
Manage session history with JavaScript
react-lifecycles-compat 3.0.4
Backwards compatibility polyfill for React class components
to-arraybuffer 1.0.1
Get an ArrayBuffer from a Buffer as fast as possible
resolve-pathname 2.1.0 - 2.2.0Outdated
Resolve URL pathnames using JavaScript
value-equal 0.2.1 - 0.3.0Outdated
Are these two JavaScript values equal?
react-side-effect 1.1.5Outdated
Create components whose prop changes map to a global side effect
react-helmet 5.0.0 - 5.2.1Outdated
A document head manager for React
create-react-class 15.6.3Outdated
Legacy API for creating React components.
react-modal 2.2.2 - 2.4.1Outdated
Accessible modal dialog component for React.JS
d3-collection 1.0.1 - 1.0.7
Handy data structures for elements keyed by string.
fbemitter 2.1.1Outdated
Facebook's EventEmitter is a simple emitter implementation that prioritizes speed and simplicity. It is conceptually similar to other emitters like Node's EventEmitter, but the precise APIs differ. More complex abstractions like the event systems used on
recompose 0.17.0 - 0.23.0Outdated
A React utility belt for function components and higher-order components
inversify 6.0.1Outdated
A powerful and lightweight inversion of control container for JavaScript and Node.js apps powered by TypeScript.
change-emitter 0.1.2 - 0.1.6
Listen for changes. Like an event emitter that only emits a single event type. Really tiny.
react-moment-proptypes 1.5.0Outdated
React proptype for moment module
gsap 3.0.0 - 3.11.4Outdated
GSAP is a framework-agnostic JavaScript animation library that turns developers into animation superheroes. Build high-performance animations that work in **every** major browser. Animate CSS, SVG, canvas, React, Vue, WebGL, colors, strings, motion paths,
bootstrap-vue 1.0.0 - 2.15.0Outdated
With more than 85 components, over 45 available plugins, several directives, and 1000+ icons, BootstrapVue provides one of the most comprehensive implementations of the Bootstrap v4 component and grid system available for Vue.js v2.6, complete with extens
react-relay 1.5.0 - 5.0.0Outdated
A framework for building GraphQL-driven React applications.
payment 2.0.0 - 2.4.0Outdated
A general purpose library for building credit card forms, validating inputs and formatting numbers. Base on jquery.payment by @stripe, but without the jQuery.
immutable-tuple 0.4.8 - 0.4.10
Immutable finite list objects with constant-time equality testing (===) and no memory leaks
@stimulus/core 0.6.0Outdated
Stimulus JavaScript framework: Core library
fluture 6.0.0 - 14.0.0
FantasyLand compliant (monadic) alternative to Promises
most 0.10.0 - 0.19.7Outdated
Monadic streams
@most/scheduler 0.8.0 - 0.12.0Outdated
Reactive programming with lean, functions-only, curried, tree-shakeable API